脆弱性一覧
CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。
| ID | タイトル | |
|---|---|---|
| CVE-2026-10047 |
|
c に 境界外書き込み (CVE-2026-10047)
c に 境界外書き込み (CVE-2026-10047) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-7195 |
|
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
|
| CVE-2026-7201 |
|
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
|
| CVE-2026-7313 |
|
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
|
| CVE-2026-39552 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2026-39553 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2026-39555 |
|
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection.
...
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection.
...
|
| CVE-2026-10621 |
|
path-traversal の脆弱性 (CVE-2026-10621)
path-traversal に 脆弱性 (CVE-2026-10621) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-10622 |
|
CVE-2026-10622 の脆弱性 (CVE-2026-10622)
CVE-2026-10622 に 脆弱性 (CVE-2026-10622) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2025-68886 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2025-69369 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2025-58707 |
|
CVE-2025-58707 の脆弱性 (CVE-2025-58707)
CVE-2025-58707 に 脆弱性 (CVE-2025-58707) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-58897 |
|
CVE-2025-58897 の脆弱性 (CVE-2025-58897)
CVE-2025-58897 に 脆弱性 (CVE-2025-58897) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2019-25719 |
|
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
|
| CVE-2026-42669 |
|
CVE-2026-42669 の脆弱性 (CVE-2026-42669)
CVE-2026-42669 に 脆弱性 (CVE-2026-42669) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-39550 |
|
deserialization に 安全でないデシリアライゼーション (CVE-2026-39550)
deserialization に 脆弱性 (CVE-2026-39550) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-58024 |
|
CVE-2025-58024 の脆弱性 (CVE-2025-58024)
CVE-2025-58024 に 脆弱性 (CVE-2025-58024) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-42670 |
|
CVE-2026-42670 の脆弱性 (CVE-2026-42670)
CVE-2026-42670 に 脆弱性 (CVE-2026-42670) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2025-58705 |
|
CVE-2025-58705 の脆弱性 (CVE-2025-58705)
CVE-2025-58705 に 脆弱性 (CVE-2025-58705) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-53440 |
|
CVE-2025-53440 の脆弱性 (CVE-2025-53440)
CVE-2025-53440 に 脆弱性 (CVE-2025-53440) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-39551 |
|
deserialization に 安全でないデシリアライゼーション (CVE-2026-39551)
deserialization に 脆弱性 (CVE-2026-39551) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-42685 |
|
CVE-2026-42685 に クロスサイトスクリプティング (CVE-2026-42685)
CVE-2026-42685 に XSS (クロスサイトスクリプティング) (CVE-2026-42685) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-5422 |
|
jupyter-server の脆弱性 (CVE-2026-5422)
jupyter-server に 脆弱性 (CVE-2026-5422) が存在。機密情報が外部に流出する可能性があります。対策: `2.18.2` 以上に更新。
|
| CVE-2025-53345 |
|
CVE-2025-53345 の脆弱性 (CVE-2025-53345)
CVE-2025-53345 に 脆弱性 (CVE-2025-53345) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-52759 |
|
CVE-2025-52759 に クロスサイトスクリプティング (CVE-2025-52759)
CVE-2025-52759 に XSS (クロスサイトスクリプティング) (CVE-2025-52759) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-3514 |
|
prefect に 認可不備 (CVE-2026-3514)
prefect に 脆弱性 (CVE-2026-3514) が存在。機密情報が外部に流出する可能性があります。対策: `3.6.22.dev7` 以上に更新。
|
| CVE-2026-1784 |
|
redhat の脆弱性 (CVE-2026-1784)
redhat に 脆弱性 (CVE-2026-1784) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-8293 |
|
wordpress に 認証バイパス (CVE-2026-8293)
wordpress に 認証バイパス (CVE-2026-8293) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-24087 |
|
Memory corruption while processing fastboot OEM commands.
Memory corruption while processing fastboot OEM commands.
|
| CVE-2026-24090 |
|
qualcomm の脆弱性 (CVE-2026-24090)
qualcomm に 脆弱性 (CVE-2026-24090) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-24089 |
|
Memory corruption while processing fastboot commands with invalid input.
Memory corruption while processing fastboot commands with invalid input.
|
| CVE-2025-59606 |
|
qualcomm の脆弱性 (CVE-2025-59606)
qualcomm に 脆弱性 (CVE-2025-59606) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2019-25718 |
|
privilege-escalation の脆弱性 (CVE-2019-25718)
privilege-escalation に 脆弱性 (CVE-2019-25718) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-59605 |
|
qualcomm に 境界外書き込み (CVE-2025-59605)
qualcomm に 境界外書き込み (CVE-2025-59605) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-59604 |
|
qualcomm の脆弱性 (CVE-2025-59604)
qualcomm に 脆弱性 (CVE-2025-59604) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2022-0492 KEV |
|
【KEV】Linux c に 認証バイパス (CVE-2022-0492)
Linux c に 認証バイパス (CVE-2022-0492) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
| CVE-2026-24782 |
|
sqli に SQLインジェクション (CVE-2026-24782)
sqli に SQLインジェクション (CVE-2026-24782) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-25258 |
|
Memory corruption while processing IOCTL calls for escape operations.
Memory corruption while processing IOCTL calls for escape operations.
|
| CVE-2026-25259 |
|
Memory corruption while processing multiple IOCTL command for escape operations.
Memory corruption while processing multiple IOCTL command for escape operations.
|
| CVE-2026-25260 |
|
qualcomm の脆弱性 (CVE-2026-25260)
qualcomm に 脆弱性 (CVE-2026-25260) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-25276 |
|
Memory corruption while using Strongbox due to missing bounds check.
Memory corruption while using Strongbox due to missing bounds check.
|
| CVE-2026-25277 |
|
Memory corruption while using Strongbox due to buffer overflow.
Memory corruption while using Strongbox due to buffer overflow.
|
| CVE-2026-24092 |
|
Memory Corruption when processing fastboot commands to set display mode.
Memory Corruption when processing fastboot commands to set display mode.
|
| CVE-2026-24752 |
|
accellion に クロスサイトスクリプティング (CVE-2026-24752)
accellion に XSS (クロスサイトスクリプティング) (CVE-2026-24752) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-24085 |
|
qualcomm の脆弱性 (CVE-2026-24085)
qualcomm に 脆弱性 (CVE-2026-24085) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-24088 |
|
qualcomm の脆弱性 (CVE-2026-24088)
qualcomm に 脆弱性 (CVE-2026-24088) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-24091 |
|
Memory corruption while processing fastboot commands with improperly formatted input.
Memory corruption while processing fastboot commands with improperly formatted input.
|
| CVE-2026-28580 |
|
google の脆弱性 (CVE-2026-28580)
google に 脆弱性 (CVE-2026-28580) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-40964 |
|
CVE-2026-40964 に 認証バイパス (CVE-2026-40964)
CVE-2026-40964 に 認証バイパス (CVE-2026-40964) が存在。機密情報が外部に流出する可能性があります。対策: `3.2.7` 以上に更新。
|
| CVE-2026-49491 |
|
sqli に SQLインジェクション (CVE-2026-49491)
sqli に SQLインジェクション (CVE-2026-49491) が存在。機密情報が外部に流出する可能性があります。
|